Maria Sharapova Sex-E Screen Saver
Maria Sharapova Sex-E Screen Saver is an adware bundler that installs Spyware-WebHancer with itself. Spyware-WebHancer that has a process which starts at Windows startup and monitors web sites being viewed and sends performance data on the websites
back to Webhancer s servers. The customer companion collects names of visited sites and how fast they are loaded, and sends them back to Webhancer s servers. It also installs Clspring GW that is a kind of Trojan.
General information:
Malware Name: |
Maria Sharapova Sex-E Screen Saver |
Malware Type: |
Adware Bundler |
Company Name: |
White Paw Products |
Company URL: |
http://www.sexy-screen-savers.com/
|
Threat Level: |
Elevated Risk |
Operating System: |
WIN XP |
Installation Type: |
Installed through EXE |
Operation: |
Time of After Installation |
Company Description:
White Paw Products provides you the software Maria Sharapova Sex-E Screen Saver that is a stunning and youthful beauty has lead to a multitude of male admirers and numerous advertising and modeling contracts. See her here in 33 photos that cover her
both on and off the court in poses from court action to sexy modeling shots.
Spyware Description:
Maria Sharapova Sex-E Screen Saver is an adware bundler that installs Spyware-WebHancer with itself. Spyware-WebHancer that has a process which starts at Windows startup and monitors web sites being viewed and sends performance data on the websites
back to Webhancer s servers. The customer companion collects names of visited sites and how fast they are loaded, and sends them back to Webhancer s servers. It also installs Clspring GW that is a kind of Trojan.
Characteristics/Symptoms:
-> It installs Spyware-WebHancer with itself and Clspring GW with itself. -> Spyware-WebHancer that has a process which starts at Windows startup and monitors web sites being viewed and sends performance data on the websites back
to Webhancer s servers. The customer companion collects names of visited sites and how fast they are loaded, and sends them back to Webhancer s servers. Clspring GW is a kind of Trojan.
Additional information might be found here:
Processes Running:
Maria Sharapova Sex-E.scr
File information Created after Installation:
File Location |
Size (Bytes) |
Type |
C:\Program Files\Outerinfo\OinUninstall.exe |
66824 |
Application |
C:\WINDOWS\whAgent.inf |
4884 |
Setup Information |
C:\WINDOWS\whInstaller.exe |
32768 |
Application |
Folder information Created after Installation:
Folder Location |
C:\Program Files\webHancer\Program |
C:\Program Files\whInstal |
Registry information Created after Installation:
Main Registry Key |
Sub Registry Key |
Key Value Name |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webHancer Agent |
|
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webHancer Agent |
DisplayName |
HKEY_LOCAL_MACHINE |
\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webHancer Agent |
UninstallString |